- - - --------------------------------------------------------------------- GENTOO LINUX SECURITY ANNOUNCEMENT 200306-09 - - - --------------------------------------------------------------------- PACKAGE : cups SUMMARY : Denial of service DATE : 2003-06-14 21:01 UTC EXPLOIT : remote VERSIONS AFFECTED :=cups-1.1.18-r5 CVE : CAN-2003-0195 - - - --------------------------------------------------------------------- CUPS allows remote attackers to cause a denial of service via a partial printing request to the IPP port (631), which does not time out. SOLUTION It is recommended that all Gentoo Linux users who are running net-print/cups upgrade to cups-1.1.18-r5 as follows emerge sync emerge cups emerge clean - - - --------------------------------------------------------------------- aliz@gentoo.org - GnuPG key is available at - - - ---------------------------------------------------------------------